Export a container image SBOM
Download the SBOM of one completed scan as an SPDX 2.3 or CycloneDX 1.6 JSON document. Without scan_id, Strix uses the latest completed scan. Strix builds the document from the stored components, so it matches listContainerImageComponents.
Authorizations
API token obtained from the Tokens endpoint or CLI device login. Include as Authorization: Bearer <token>. Requests made with a managed CLI session also include X-Strix-Workspace: <organization_id> to pin a process to the workspace it started in; recovery endpoints report the current workspace after a concurrent switch.
Path Parameters
UUID of the container image. Use the id field of an image from listContainerImages.
Query Parameters
Document format.
spdx, cyclonedx UUID of an image snapshot from listContainerImageSnapshots.
Response
The SBOM document, served as a file attachment.
The response is of type object.